Security and authentication
9.3 IPsec VPN
SCALANCE S615 Command Line Interface
Configuration Manual, 06/2015, C79000-G8976-C406-02
399
The default list is used.
You display this setting and other information with the show ipsec conn-phaseX command.
You disable the use of the default list with the
no default-ciphers command.
no default-ciphers
Description
With this command, you disable the use of the default list.
You are in the IPSEC PHASE configuration mode.
The command prompt is as follows:
cli(config-conn-phsX)#
X: 1 (Phase 1)
2 (Phase 2)
Call the command without parameter assignment:
no default-ciphers
The use of the default list is disabled. The fixed values are used for the phase.
You configure the fixed values for phase 1 with the commands ike-encryption, ike-auth and
ike-keyderivation.
You configure the fixed values for phase 2 with the commands
esp-encryption, esp-auth and
esp-keyderivation.
You display this setting and other information with the
show ipsec conn-phase1 or show ipsec
conn-phase2
command.
You enable the use of the default list with the
default-ciphers command.